mta gta san andreas multiplayer.exe

Software

The application mta gta san andreas multiplayer.exe has been detected as a potentially unwanted program by 19 anti-malware scanners. This is a setup program which is used to install the application. The setup routine uses the RevenYou.Com Pay Per Install platform (OutBrowse) which bundles additional software offers inclduing toolbars, extensions, PC utilities as well as other PUPs. The file has been seen being downloaded from dc598.4shared.com.
Publisher:
Software

Product:
Software

Version:
1.0.0.0

MD5:
710aa017c207f4f2b3d40d1958e84fd6

SHA-1:
2d46f052949ec23079cb4408c434bb312df155c9

SHA-256:
4f68c943ad4200ba188ea54aa1099f28f9e423c37ee37bfd3b971ab30e9db72a

Scanner detections:
19 / 68

Status:
Potentially unwanted

Explanation:
Bundles additional adware offers during download and installation using the OutBrowse installer.

Analysis date:
11/16/2024 11:22:43 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.15336011
367

Arcabit
Trojan.Generic.DEA024B
1.0.0.637

avast!
Win64:Trojan-gen
2014.9-160202

AVG
MSIL9
2017.0.2845

Bitdefender
Trojan.Generic.15336011
1.0.20.165

Clam AntiVirus
Win.Trojan.15336011
0.98/21511

Emsisoft Anti-Malware
Trojan.Generic.15336011
8.16.02.02.07

ESET NOD32
MSIL/TrojanDropper.Agent.BBQ (variant)
10.12804

F-Secure
Trojan.Generic.15336011
11.2016-02-02_3

G Data
Trojan.Generic.15336011
16.2.25

IKARUS anti.virus
Trojan-Dropper.MSIL.Agent
t3scan.1.9.5.0

K7 AntiVirus
Trojan
13.212.18303

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.721

Malwarebytes
Backdoor.SpyNet
v2016.02.02.07

MicroWorld eScan
Trojan.Generic.15336011
17.0.0.99

nProtect
Trojan.Generic.15336011
15.12.31.01

Rising Antivirus
PE:Malware.Generic(Thunder)!1.A1C4 [F]
23.00.65.16131

VIPRE Antivirus
Trojan.Win32.Generic
46230

Zillya! Antivirus
Adware.OutBrowse.Win32.73419
2.0.0.2591

File size:
638.1 KB (653,388 bytes)

Product version:
1.0.0.0

Copyright:
Software

Trademarks:
Software

Original file name:
Software.exe

File type:
Executable application (Win64 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\mta gta san andreas multiplayer.exe

File PE Metadata
Compilation timestamp:
12/2/2015 1:56:00 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
12288:PMMMMMMMMMMMMMMMrMMMMMMMMMMMMMMMMXnTppc6o7MMMMMMMMMMMMMMVGX3jaAI:PMMMMMMMMMMMMMMMrMMMMMMMMMMMMMM8

Entry point:
4D, 5A, 90, 00, 03, 00, 00, 00, 04, 00, 00, 00, FF, FF, 00, 00, B8, 00, 00, 00, 00, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 80, 00, 00, 00, 0E, 1F, BA, 0E, 00, B4, 09, CD, 21, B8, 01, 4C, CD, 21, 54, 68, 69, 73, 20, 70, 72, 6F, 67, 72, 61, 6D, 20, 63, 61, 6E, 6E, 6F, 74, 20, 62, 65, 20, 72, 75, 6E, 20, 69, 6E, 20, 44, 4F, 53, 20, 6D, 6F, 64, 65, 2E, 0D, 0D, 0A, 24, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Code size:
349.5 KB (357,888 bytes)

The file mta gta san andreas multiplayer.exe has been seen being distributed by the following URL.

Remove mta gta san andreas multiplayer.exe - Powered by Reason Core Security